cjoint

Publicité


Publicité

Format du document : text/plain

Prévisualisation

Resultado do exame da Farbar Recovery Scan Tool (FRST) (x64) Versão: 31-08-2016
Executado por Usuario (administrador) em USUARIO-PC (01-09-2016 17:45:11)
Executando a partir de C:\Users\Usuario\Downloads
Perfis Carregados: Usuario (Perfis Disponíveis: Usuario & João)
Platform: Windows 7 Ultimate Service Pack 1 (X64) Idioma: Português (Brasil)
Internet Explorer Versão 11 (Navegador padrão: "C:\Program Files (x86)\Jamben\Application\chrome.exe" "%1")
Modo da Inicialização: Normal
Tutorial da Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processos (Whitelisted) =================

(Se uma entrada for incluída na fixlist, o processo será fechado. O arquivo não será movido.)

(Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe
(Hi-Rez Studios) C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\VS7DEBUG\mdm.exe
(Motorola Mobility LLC) C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe
(Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(Motorola Mobility LLC) C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperAgent.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe
(Highresolution Enterprises) C:\Program Files\Highresolution Enterprises\X-Mouse Button Control\XMouseButtonControl.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe
(Microsoft Corporation) C:\Program Files\Microsoft IntelliType Pro\itype.exe
(Dropbox, Inc.) C:\Users\Usuario\AppData\Roaming\Dropbox\bin\Dropbox.exe
(Mega Limited) C:\Users\Usuario\AppData\Local\MEGAsync\MEGAsync.exe
() C:\Program Files (x86)\GIGABYTE\AppCenter\ApCent.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microvirt Software Technology Co. Ltd.) C:\Program Files\Microvirt\MEmu\MEmuConsole.exe
() C:\Program Files\Microvirt\MEmu\adb.exe
(hxxps://tortoisegit.org/) C:\Program Files\TortoiseGit\bin\TGitCache.exe
() C:\Program Files (x86)\bPT\rrxbue.exe 
(Wiselogic Co., Ltd.) C:\Program Files (x86)\bPT\XTrap\XTrap.xt
(TeamSpeak Systems GmbH) C:\Users\Usuario\AppData\Local\TeamSpeak 3 Client\ts3client_win32.exe
(Microsoft Corporation) C:\Windows\System32\msiexec.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Akamai Technologies, Inc.) C:\Users\Usuario\AppData\Local\Akamai\netsession_win.exe
(Akamai Technologies, Inc.) C:\Users\Usuario\AppData\Local\Akamai\netsession_win.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registro (Whitelisted) ===========================

(Se uma entrada for incluída na fixlist, o ítem no Registro será restaurado para o padrão ou removido. O arquivo não será movido.)

HKLM\...\Run: [XMouseButtonControl] => C:\Program Files\Highresolution Enterprises\X-Mouse Button Control\XMouseButtonControl.exe [1121776 2015-08-10] (Highresolution Enterprises)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2013-10-24] (Realtek Semiconductor)
HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1340192 2016-01-29] (Microsoft Corporation)
HKLM\...\Run: [itype] => c:\Program Files\Microsoft IntelliType Pro\itype.exe [1873256 2011-08-10] (Microsoft Corporation)
HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [133440 2012-07-19] (Intel Corporation)
HKLM-x32\...\RunOnce: [PreRun] => C:\Program Files (x86)\GIGABYTE\AppCenter\PreRun.exe [8192 2013-04-29] ()
HKU\S-1-5-21-1144292019-2563834070-1988740619-1000\...\Run: [Dropbox Update] => C:\Users\Usuario\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-17] (Dropbox, Inc.)
HKU\S-1-5-21-1144292019-2563834070-1988740619-1000\...\Run: [Akamai NetSession Interface] => C:\Users\Usuario\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-29] (Akamai Technologies, Inc.)
HKU\S-1-5-21-1144292019-2563834070-1988740619-1000\...\Policies\system: [LogonHoursAction] 2
HKU\S-1-5-21-1144292019-2563834070-1988740619-1000\...\Policies\system: [DontDisplayLogonHoursWarnings] 1
HKU\S-1-5-21-1144292019-2563834070-1988740619-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
ShellIconOverlayIdentifiers: [ Tortoise1Normal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [ Tortoise2Modified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [ Tortoise3Conflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [ Tortoise4Locked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [ Tortoise5ReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [ Tortoise6Deleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [ Tortoise7Added] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [ Tortoise8Ignored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [ Tortoise9Unversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt9] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt64.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => Nenhum Arquivo
ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => Nenhum Arquivo
ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => Nenhum Arquivo
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => Nenhum Arquivo
ShellIconOverlayIdentifiers-x32: [ Tortoise1Normal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [ Tortoise2Modified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [ Tortoise3Conflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [ Tortoise4Locked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [ Tortoise5ReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [ Tortoise6Deleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [ Tortoise7Added] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [ Tortoise8Ignored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [ Tortoise9Unversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files (x86)\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2015-08-25] (hxxp://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt9] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [DropboxExt3] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Usuario\AppData\Roaming\Dropbox\bin\DropboxExt.42.dll [2016-08-23] (Dropbox, Inc.)
Startup: C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2015-10-03]
ShortcutTarget: Dropbox.lnk -> C:\Users\Usuario\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
Startup: C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2016-05-03]
ShortcutTarget: MEGAsync.lnk -> C:\Users\Usuario\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited)
GroupPolicy: Restrição - Chrome <======= ATENÇÃO

==================== Internet (Whitelisted) ====================

(Se um ítem for incluído na fixlist, sendo um ítem do Registro, será removido ou restaurado para o padrão.)

HKLM\SOFTWARE\Policies\Microsoft\Windows\IPSec\Policy\Local: [ActivePolicy] SOFTWARE\Policies\Microsoft\Windows\IPSEC\Policy\Local\ipsecPolicy{3be70705-7d50-43aa-b235-53b716b18995} <======= ATENÇÃO (Restrição - IP)
Winsock: Catalog5 09 pcapwsp.dll Nenhum Arquivo
Winsock: Catalog5-x64 09 pcapwsp.dll Nenhum Arquivo
Tcpip\..\Interfaces\{027725E0-B972-49F8-9842-2DD6F4439982}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{C31F5793-DD21-4E3B-9AD8-0E197C7FCF2D}: [NameServer] 8.8.8.8,8.8.4.4
Tcpip\..\Interfaces\{C31F5793-DD21-4E3B-9AD8-0E197C7FCF2D}: [DhcpNameServer] 192.168.25.1

Internet Explorer:
==================
HKU\.DEFAULT\SOFTWARE\Policies\Microsoft\Internet Explorer: Restrição <======= ATENÇÃO
HKU\S-1-5-21-1144292019-2563834070-1988740619-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Restrição <======= ATENÇÃO
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.nuesearch.com/?type=hp&ts=1472474748&z=af694038805e63a34c3f6a5g1z1m8oezcmczcm9w9b&from=wpm0829&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.nuesearch.com/?type=hp&ts=1472474748&z=af694038805e63a34c3f6a5g1z1m8oezcmczcm9w9b&from=wpm0829&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.nuesearch.com/search/?type=ds&ts=1472474748&z=af694038805e63a34c3f6a5g1z1m8oezcmczcm9w9b&from=wpm0829&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.nuesearch.com/?type=hp&ts=1472474748&z=af694038805e63a34c3f6a5g1z1m8oezcmczcm9w9b&from=wpm0829&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.nuesearch.com/?type=hp&ts=1472474748&z=af694038805e63a34c3f6a5g1z1m8oezcmczcm9w9b&from=wpm0829&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.nuesearch.com/search/?type=ds&ts=1472474748&z=af694038805e63a34c3f6a5g1z1m8oezcmczcm9w9b&from=wpm0829&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C&q={searchTerms}
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
HKU\S-1-5-21-1144292019-2563834070-1988740619-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.nuesearch.com/search/?type=ds&ts=1472474748&z=af694038805e63a34c3f6a5g1z1m8oezcmczcm9w9b&from=wpm0829&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C&q={searchTerms}
HKU\S-1-5-21-1144292019-2563834070-1988740619-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.nuesearch.com/?type=hp&ts=1472474748&z=af694038805e63a34c3f6a5g1z1m8oezcmczcm9w9b&from=wpm0829&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C
HKU\S-1-5-21-1144292019-2563834070-1988740619-1000\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.nuesearch.com/search/?type=ds&ts=1472474748&z=af694038805e63a34c3f6a5g1z1m8oezcmczcm9w9b&from=wpm0829&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C&q={searchTerms}
HKU\S-1-5-21-1144292019-2563834070-1988740619-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.nuesearch.com/?type=hp&ts=1472474748&z=af694038805e63a34c3f6a5g1z1m8oezcmczcm9w9b&from=wpm0829&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C
URLSearchHook: HKLM-x32 -> Padrão = {CCC7B151-1D8C-11E3-B2AD-F3EF3D58318D}
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nuesearch.com/search/?type=ds&ts=1472474748&z=af694038805e63a34c3f6a5g1z1m8oezcmczcm9w9b&from=wpm0829&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C&q={searchTerms}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {1b31c9d2-7135-442b-bb93-7c002172adc6} URL = hxxps://br.search.yahoo.com/yhs/search?hspart=elm&hsimp=yhs-001&type=hdr_s_16_31_wbf_anvsft_16_16¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3DHodor%26cd%3D2XzuyEtN2Y1L1QzuzyyE0D0EzztDtDtA0AtCyBtAtBtByDyDtN0D0Tzu0StCyCyByDtN1L2XzutAtFtByEtFyCtFtDtN1L1Czu1M1Q1CtByDtFtDtFtDtN1L1G1B1V1N2Y1L1Qzu2StD0D0FyEyC0CtAyCtGyCyD0D0BtGzztD0F0AtGtByByEyCtGzy0C0CyCyEyByC0ByCzy0EtD2QtN1M1F1B2Z1V1N2Y1L1Qzu2StCtD0Czz0F0D0FtDtG0CtBzzyCtGyEzztDtDtG0A0D0B0AtGyCyCtD0D0B0DyBtDtD0D0FtB2QtN0A0LzutB%26cr%3D102304569%26a%3Dhdr_s_16_31_wbf_anvsft_16_16%26os_ver%3D6.1%26os%3DWindows%2B7%2BUltimate&p={searchTerms}
SearchScopes: HKLM -> {2f23ab71-4ac6-41f2-a955-ea576e553146} URL = hxxps://br.search.yahoo.com/yhs/search?hspart=iry&hsimp=yhs-fullyhosted_003&type=wbf_anvsft_16_16¶m1=1¶m2=f%3D4%26b%3DIE%26cc%3Dbr%26pa%3DWincy%26cd%3D2XzuyEtN2Y1L1QzuzyyE0D0EzztDtDtA0AtCyBtAtBtByDyDtN0D0Tzu0StCyDyCzztN1L2XzutAtFtBtCtFtDtFtCtN1L1Czu1BtBtN1L1G1B1V1N2Y1L1Qzu2StCyEyCyCtByEyEyBtGtCyEyEzztG0FyDyB0EtGtBtAyD0DtG0ByCtCyByC0FyByE0A0CyByD2QtN1M1F1B2Z1V1N2Y1L1Qzu2StCtD0Czz0F0D0FtDtG0CtBzzyCtGyEzztDtDtG0A0D0B0AtGyCyCtD0D0B0DyBtDtD0D0FtB2QtN0A0LzutB%26cr%3D1499515040%26a%3Dwbf_anvsft_16_16%26os_ver%3D6.1%26os%3DWindows%2B7%2BUltimate&p={searchTerms}
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nuesearch.com/search/?type=ds&ts=1472474748&z=af694038805e63a34c3f6a5g1z1m8oezcmczcm9w9b&from=wpm0829&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C&q={searchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nuesearch.com/search/?type=ds&ts=1472474748&z=af694038805e63a34c3f6a5g1z1m8oezcmczcm9w9b&from=wpm0829&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C&q={searchTerms}
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?q={searchTerms}&form=MSSEDF&pc=MSSE
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nuesearch.com/search/?type=ds&ts=1472474748&z=af694038805e63a34c3f6a5g1z1m8oezcmczcm9w9b&from=wpm0829&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C&q={searchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1144292019-2563834070-1988740619-1000 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nuesearch.com/search/?type=ds&ts=1472474748&z=af694038805e63a34c3f6a5g1z1m8oezcmczcm9w9b&from=wpm0829&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C&q={searchTerms}
SearchScopes: HKU\S-1-5-21-1144292019-2563834070-1988740619-1000 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.nuesearch.com/search/?type=ds&ts=1472474748&z=af694038805e63a34c3f6a5g1z1m8oezcmczcm9w9b&from=wpm0829&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C&q={searchTerms}
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation)
BHO-x32: Microsoft Web Test Recorder 12.0 Helper -> {432dd630-7e03-4c97-9d62-b99f52df4fc2} -> C:\Program Files (x86)\Microsoft Visual Studio Ultimate 2013\Common7\IDE\PrivateAssemblies\Microsoft.VisualStudio.QualityTools.RecorderBarBHO100.dll [2013-10-05] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\ssv.dll [2015-08-23] (Oracle Corporation)
BHO-x32: Auxiliar de Conexão de Conta da Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-08-23] (Oracle Corporation)
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2016-02-01] (Skype Technologies)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-05-25] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-05-25] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - C:\Program Files (x86)\Internet Explorer\iexplore.exe hxxp://www.nuesearch.com/?type=sc&ts=1472474748&z=af694038805e63a34c3f6a5g1z1m8oezcmczcm9w9b&from=wpm0829&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C

FireFox:
========
FF ProfilePath: C:\Users\Usuario\AppData\Roaming\Profiles\jjp31qwc.default
FF NewTab: hxxp://www.trotux.com/?z=9d6c35350b6dc9bfb07e308g0z2qcb6g5o5o7t8z2g&from=isr&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C&type=hp
FF DefaultSearchEngine: trotux
FF SearchEngineOrder.1: 0
FF SearchEngineOrder.3: Bing
FF SelectedSearchEngine: trotux
FF Homepage: hxxp://www.trotux.com/?z=9d6c35350b6dc9bfb07e308g0z2qcb6g5o5o7t8z2g&from=isr&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C&type=hp
FF Keyword.URL: hxxp://www.bing.com/search?FORM=SK2MDF&PC=SK2M&q=
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_20_0_0_235.dll [2015-12-21] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [Nenhum Arquivo]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_20_0_0_235.dll [2015-12-21] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-08-23] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files (x86)\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-08-23] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Nenhum Arquivo]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @pandonetworks.com/PandoWebPlugin -> C:\Program Files (x86)\Pando Networks\Media Booster\npPandoWebPlugin.dll [Nenhum Arquivo]
FF Plugin-x32: @raidcall.br/RCplugin -> C:\Users\Usuario\AppData\Roaming\raidcall\plugins\nprcplugin.dll [2014-05-26] (Raidcall)
FF Plugin-x32: @t.garena.com/garenatalk -> C:\Program Files (x86)\Garena Plus\bbtalk\plugins\npPlugin\npGarenaTalkPlugin.dll [2016-04-01] ( Garena)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2015-09-24] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-1144292019-2563834070-1988740619-1000: @Legend Of Glory -> C:\Program Files (x86)\Legend Of Glory\plugin\npLegendOfGlory1.dll [Nenhum Arquivo]
FF Plugin HKU\S-1-5-21-1144292019-2563834070-1988740619-1000: @nsroblox.roblox.com/launcher -> C:\Users\Usuario\AppData\Local\Roblox\Versions\version-e6d872d544b64cd9\\NPRobloxProxy.dll [2013-01-01] ( ROBLOX Corporation)
FF Plugin HKU\S-1-5-21-1144292019-2563834070-1988740619-1000: @nsroblox.roblox.com/launcher64 -> C:\Users\Usuario\AppData\Local\Roblox\Versions\version-e6d872d544b64cd9\\NPRobloxProxy64.dll [2013-01-01] ( ROBLOX Corporation)
FF Plugin HKU\S-1-5-21-1144292019-2563834070-1988740619-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Usuario\AppData\Local\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin HKU\S-1-5-21-1144292019-2563834070-1988740619-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Usuario\AppData\Local\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-28] (Google Inc.)
FF Plugin HKU\S-1-5-21-1144292019-2563834070-1988740619-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Usuario\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-08-28] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-1144292019-2563834070-1988740619-1000: thehappycloud.com/HappyCloudPlugin -> C:\ProgramData\HappyCloud\Application\npHappyCloudPlugin.dll [2013-11-17] (The Happy Cloud)
FF SearchPlugin: C:\Users\Usuario\AppData\Roaming\Mozilla\Firefox\Profiles\5fxcx0ef.default-1421197032571\searchplugins\nuesearch.xml [2016-08-29]
FF SearchPlugin: C:\Users\Usuario\AppData\Roaming\Profiles\jjp31qwc.default\searchplugins\gsd9bvor.xml [2016-07-10]
FF Extension: (GsearchFinder) - C:\Users\Usuario\AppData\Roaming\Profiles\jjp31qwc.default\Extensions\@90B817C8-8A5C-413B-9DDD-B2C61ED6E79A.xpi [2016-07-09]
FF Extension: (Skype) - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2016-05-25]
StartMenuInternet: FIREFOX.EXE - C:\Program Files (x86)\Mozilla Firefox\firefox.exe hxxp://www.nuesearch.com/?type=sc&ts=1472474748&z=af694038805e63a34c3f6a5g1z1m8oezcmczcm9w9b&from=wpm0829&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C

Chrome:
=======
CHR HomePage: Profile 2 -> msn.com/?pc=__PARAM__&ocid=__PARAM__DHP&osmkt=pt-br
CHR StartupUrls: Profile 2 -> "hxxps://www.google.com.br/"
CHR Profile: C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\ChromeDefaultData
CHR Extension: (Google Cast) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\boadgeojelhgndaghljhdicfkmllpafd [2016-06-01]
CHR Extension: (Adblock Plus) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-06-01]
CHR Extension: (Tampermonkey) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2016-06-01]
CHR Extension: (LoL Stream Browser) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\edidfaijmhpefkbnobdcepampbncgejp [2016-06-01]
CHR Extension: (Área de trabalho remota do Google Chrome) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2016-06-09]
CHR Extension: (Unlimited Free VPN - Hola) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2016-06-09]
CHR Extension: (The Great Suspender) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\klbibkeccnjlkjkiokjodocebajanakg [2016-06-01]
CHR Extension: (Boomerang for Gmail) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\ChromeDefaultData\Extensions\mdanidgdpmkimeiiojknlnekblgmpdll [2016-06-01]
CHR Profile: C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Default
CHR Profile: C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2
CHR Extension: (Google Apresentações) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-07-10]
CHR Extension: (Google Docs) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2016-07-10]
CHR Extension: (Google Drive) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-07-10]
CHR Extension: (YouTube) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-07-10]
CHR Extension: (Adblock Plus) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-08-25]
CHR Extension: (Tampermonkey) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2016-08-27]
CHR Extension: (Planilhas do Google) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-07-10]
CHR Extension: (Documentos Google off-line) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-08-25]
CHR Extension: (Pagamentos da Chrome Web Store) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-07-10]
CHR Extension: (Gmail) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-07-10]
CHR Extension: (Chrome Media Router) - C:\Users\Usuario\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-08-30]
CHR HKU\S-1-5-21-1144292019-2563834070-1988740619-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-05-25]
StartMenuInternet: Google Chrome - C:\Program Files (x86)\Google\Chrome\Application\chrome.exe hxxp://www.nuesearch.com/?type=sc&ts=1472474748&z=af694038805e63a34c3f6a5g1z1m8oezcmczcm9w9b&from=wpm0829&uid=ST500DM002-1BD142_Z3TDJS1CXXXXZ3TDJS1C

Opera:
=======
OPR Extension: (Sem Nome) - C:\Users\Usuario\AppData\Roaming\Opera Software\Opera Stable\Extensions\fghlbjjfaimocdbincabjnngocjeiaij [2016-05-29]

==================== Serviços (Whitelisted) ========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

S3 AppleChargerSrv; C:\Windows\System32\AppleChargerSrv.exe [31272 2010-04-06] ()
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1364096 2016-05-25] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1687680 2016-05-25] (Microsoft Corporation)
S3 c2wts; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [15768 2010-02-02] (Microsoft Corporation)
R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\52.0.2743.48\remoting_host.exe [76616 2016-06-20] (Google Inc.)
S3 fussvc; C:\Program Files (x86)\Windows Kits\8.1\App Certification Kit\fussvc.exe [142336 2014-02-19] (Microsoft Corporation) [Arquivo não assinado]
S4 gadjservice; C:\Program Files (x86)\Gigabyte\AppCenter\AdjustService.exe [16896 2015-04-14] () [Arquivo não assinado]
S4 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1163712 2016-06-14] (NVIDIA Corporation)
S2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [2554376 2016-07-20] (LogMeIn Inc.)
R2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9216 2014-08-22] (Hi-Rez Studios) [Arquivo não assinado]
S4 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [Arquivo não assinado]
S4 IhPul; C:\Users\Usuario\AppData\Roaming\setup1\TSvr.exe [210640 2016-08-28] (Trend Corp.)
R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [22744 2014-10-15] (Microsoft Corporation)
S4 JambenP; C:\ProgramData\Jamben\Jamben.exe [422272 2016-08-25] ()
S4 JambenU; C:\Program Files (x86)\Jamben\Update\JambenUpdate.exe [649600 2016-08-25] ()
S4 jetbrainsetw.1.1.20141219.120193; C:\Program Files (x86)\JetBrains\ETW Host\JetBrains.ETW.Collector.Host.exe [1470072 2014-12-19] (JetBrains s.r.o)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-07-05] (Intel Corporation)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-07-20] (LogMeIn, Inc.)
R2 MDM; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872 2006-10-26] (Microsoft Corporation) [Arquivo não assinado]
R2 Motorola Device Manager; C:\Program Files (x86)\Motorola Mobility\Motorola Device Manager\MotoHelperService.exe [137528 2014-04-08] (Motorola Mobility LLC)
R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [23808 2016-01-29] (Microsoft Corporation)
R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [374344 2016-01-29] (Microsoft Corporation)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [3404664 2014-10-22] (INCA Internet Co., Ltd.)
S4 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488 2016-06-14] (NVIDIA Corporation)
S4 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3632576 2016-06-14] (NVIDIA Corporation)
S4 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2521024 2016-06-14] (NVIDIA Corporation)
S4 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2104840 2015-12-02] (Electronic Arts)
S4 pcapsvc; C:\Program Files\Proxy Labs\ProxyCap\pcapsvc.exe [2283008 2014-07-06] (Proxy Labs) [Arquivo não assinado]
S4 power_activator_service; C:\Program Files\Sandboxie\Sandboxie_Power_Activator_server.exe [2899456 2015-08-22] () [Arquivo não assinado]
S4 PST Service; C:\Program Files (x86)\Motorola\MotForwardDaemon\ForwardDaemon.exe [65657 2011-09-02] (Motorola) [Arquivo não assinado]
S4 RzKLService; C:\Program Files (x86)\Razer\Razer Game Booster\RzKLService.exe [105448 2013-11-22] (Razer Inc.)
S4 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [175112 2015-02-17] (Sandboxie Holdings, LLC)
S4 SSFK; C:\Program Files (x86)\SFK\SSFK.exe [162528 2016-08-29] ()
S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [119808 2013-08-22] (Microsoft Corporation) [Arquivo não assinado]
S3 TunngleService; C:\Program Files (x86)\Tunngle\TnglCtrl.exe [814064 2015-12-22] (Tunngle.net GmbH)
S3 VsEtwService120; C:\Program Files\Microsoft Visual Studio 12.0\Common7\Packages\Debugger\Services\VsEtwService.exe [89232 2014-07-22] (Microsoft Corporation)
S3 VSStandardCollectorService140; C:\Program Files (x86)\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [108776 2016-07-17] (Microsoft Corporation)
S4 WdMan; C:\ProgramData\wwinpw\WFini.exe [541416 2016-08-26] (WFini LIMITED)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
S4 winsaber; C:\Program Files (x86)\WinSaber\WinSaber.exe [537880 2016-08-29] ()
S4 Update service; C:\Program Files (x86)\Popcorn Time\Updater.exe [X]

===================== Drivers (Whitelisted) ==========================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)

R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [21616 2011-11-02] ()
S3 ebdrv; C:\Windows\system32\DRIVERS\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [16776 2010-07-15] () [Arquivo não assinado]
S3 epmntdrv; C:\Windows\SysWOW64\epmntdrv.sys [14216 2010-07-15] () [Arquivo não assinado]
S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [9096 2010-07-15] () [Arquivo não assinado]
S3 EuGdiDrv; C:\Windows\SysWOW64\EuGdiDrv.sys [8456 2010-07-15] () [Arquivo não assinado]
S3 GVTDrv64; C:\Windows\GVTDrv64.sys [30528 2013-05-08] ()
S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [192216 2015-11-24] (Malwarebytes)
R2 memudrv; C:\Program Files\Microvirt\MEmuHyperv\MEmuDrv.sys [260328 2016-01-16] (Microvirt Corporation)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [289120 2015-11-13] (Microsoft Corporation)
R3 Neo_VPN; C:\Windows\System32\DRIVERS\Neo_0080.sys [38432 2016-04-29] (SoftEther Corporation)
R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [133816 2015-11-13] (Microsoft Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [26560 2016-06-14] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation)
S3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [237064 2015-02-17] (Sandboxie Holdings, LLC)
R3 ScpVBus; C:\Windows\System32\DRIVERS\ScpVBus.sys [39168 2013-05-19] (Scarlet.Crush Productions)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2013-08-28] (Duplex Secure Ltd.)
R3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [47736 2015-12-21] (Tunngle.net)
U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [28272 2016-07-04] ()
R2 {B154377D-700F-42cc-9474-23858FBDF4BD}; C:\Program Files (x86)\CyberLink\PowerDVD9\000.fcl [146928 2009-02-28] (CyberLink Corp.)
S3 EagleX64; \??\C:\Windows\system32\drivers\EagleX64.sys [X]
S3 GGSAFERDriver; \??\C:\Program Files (x86)\Garena Plus\Room\safedrv.sys [X]
R3 gkernel; \??\C:\Users\Usuario\AppData\Local\Temp\gkernel.sys [X]
S1 MPCKpt; system32\DRIVERS\MPCKpt.sys [X] <==== ATENÇÃO
S3 npkcrypt; \??\C:\Program Files (x86)\Old Times + Ragnarok\npkcrypt.sys [X]
S3 npkycryp; \??\C:\Program Files (x86)\Old Times + Ragnarok\npkycryp.sys [X]
S3 vmci; \SystemRoot\system32\DRIVERS\vmci.sys [X]
S3 VMnetAdapter; system32\DRIVERS\vmnetadapter.sys [X]
S2 WiseFS; \??\C:\Program Files (x86)\Wise\Wise Folder Hider\WiseFs64.sys [X]
S3 X6va022; \??\C:\Windows\SysWOW64\Drivers\X6va022 [X]
S3 X6va031; \??\C:\Windows\SysWOW64\Drivers\X6va031 [X]
R3 X6va035; \??\C:\Windows\SysWOW64\Drivers\X6va035 [X]

==================== NetSvcs (Whitelisted) ===================

(Se uma entrada for incluída na fixlist, será removida do Registro. O arquivo não será movido, a menos que seja colocado separadamente.)


==================== Três Meses Criados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-09-01 17:45 - 2016-09-01 17:47 - 00044641 _____ C:\Users\Usuario\Downloads\FRST.txt
2016-09-01 17:39 - 2016-09-01 17:39 - 02397696 _____ (Farbar) C:\Users\Usuario\Downloads\FRST64.exe
2016-09-01 02:22 - 2016-09-01 02:22 - 00000000 ___RD C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 9
2016-09-01 02:09 - 2016-09-01 02:09 - 00003352 ____N C:\bootsqm.dat
2016-09-01 01:37 - 2016-09-01 01:37 - 00001829 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MEmuConsole.lnk
2016-09-01 01:37 - 2016-09-01 01:37 - 00001776 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MEmu.lnk
2016-09-01 01:32 - 2016-09-01 01:32 - 00001839 _____ C:\Users\Usuario\Desktop\Multi-MEmu.lnk
2016-09-01 01:32 - 2016-09-01 01:32 - 00001823 _____ C:\Users\Usuario\Desktop\MEmu.lnk
2016-09-01 01:32 - 2016-09-01 01:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MEmu
2016-09-01 01:31 - 2016-09-01 15:04 - 00000000 ____D C:\Users\Usuario\.MemuHyperv
2016-09-01 01:21 - 2016-09-01 01:28 - 288262056 _____ (Microvirt) C:\Users\Usuario\Downloads\Memu-Setup (1).exe
2016-09-01 01:21 - 2016-09-01 01:27 - 328882064 _____ C:\Users\Usuario\Downloads\Memu-Lollipop-rc1.exe
2016-08-31 20:45 - 2016-08-31 20:50 - 346529904 _____ (Microvirt) C:\Users\Usuario\Downloads\Memu-PokemonGO-Setup-2.exe
2016-08-31 19:54 - 2016-08-31 19:54 - 06321526 _____ C:\Users\Usuario\Downloads\lucky-patcher-6-2-6.apk
2016-08-31 19:27 - 2016-08-31 19:28 - 63725249 _____ C:\Users\Usuario\Downloads\Pokmon-GO-v0-35-0-andr-4-0-Pdalife.ru.apk
2016-08-31 19:20 - 2016-08-31 19:24 - 63658806 _____ C:\Users\Usuario\Downloads\PokémonGOv0.35.0 (zMatheusBR).apk
2016-08-31 19:07 - 2016-08-31 19:08 - 63658806 _____ C:\Users\Usuario\Downloads\Pokémon GO_v0.35.0_apkpure.com.apk
2016-08-29 12:53 - 2016-08-29 12:53 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\Pamela
2016-08-29 12:53 - 2016-08-29 12:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pamela RichMood Editor
2016-08-29 12:53 - 2016-08-29 12:53 - 00000000 ____D C:\Program Files (x86)\Pamela RichMood Editor
2016-08-29 12:51 - 2016-08-29 12:51 - 01348584 _____ (Scendix Software-Vertriebsges. mbH) C:\Users\Usuario\Downloads\SetupRME.exe
2016-08-29 12:46 - 2016-08-29 12:46 - 00001131 _____ C:\Users\Usuario\Documents\RichMood Editor for Skype.lnk
2016-08-29 12:03 - 2016-08-29 12:04 - 00000000 ____D C:\Users\Usuario\AppData\LocalLow\uTorrent
2016-08-29 09:47 - 2016-08-29 09:47 - 00000003 _____ C:\Windows\SysWOW64\EN_57891908.html
2016-08-29 09:47 - 2016-08-29 09:47 - 00000003 _____ C:\Windows\SysWOW64\EN_57891066.html
2016-08-29 09:47 - 2016-08-29 09:47 - 00000003 _____ C:\Windows\SysWOW64\EN_57890894.html
2016-08-29 09:46 - 2016-09-01 02:22 - 00000000 ____D C:\Program Files (x86)\SFK
2016-08-29 09:46 - 2016-08-29 09:46 - 00000003 _____ C:\Windows\SysWOW64\EN_57884170.html
2016-08-29 09:46 - 2016-08-29 09:46 - 00000003 _____ C:\Windows\SysWOW64\EN_57883983.html
2016-08-29 09:46 - 2016-08-29 09:46 - 00000003 _____ C:\Windows\SysWOW64\EN_57880348.html
2016-08-29 09:46 - 2016-08-29 09:46 - 00000003 _____ C:\Windows\SysWOW64\EN_57880099.html
2016-08-29 09:46 - 2016-08-29 09:46 - 00000003 _____ C:\Windows\SysWOW64\EN_57875138.html
2016-08-29 09:46 - 2016-08-29 09:46 - 00000003 _____ C:\Windows\SysWOW64\EN_57874935.html
2016-08-29 09:46 - 2016-08-29 09:46 - 00000003 _____ C:\Windows\SysWOW64\EN_57870895.html
2016-08-29 09:46 - 2016-08-29 09:46 - 00000003 _____ C:\Windows\SysWOW64\EN_57870630.html
2016-08-29 09:46 - 2016-08-29 09:46 - 00000003 _____ C:\Windows\SysWOW64\EN_57869709.html
2016-08-29 09:46 - 2016-08-29 09:46 - 00000003 _____ C:\Windows\SysWOW64\EN_57869335.html
2016-08-29 09:46 - 2016-08-29 09:46 - 00000000 ____D C:\Users\Todos os Usuários\wwinpw
2016-08-29 09:46 - 2016-08-29 09:46 - 00000000 ____D C:\ProgramData\wwinpw
2016-08-29 09:45 - 2016-08-29 09:45 - 00000003 _____ C:\Windows\SysWOW64\EN_57807527.html
2016-08-29 09:45 - 2016-08-29 09:45 - 00000003 _____ C:\Windows\SysWOW64\br_57806950.html
2016-08-27 10:54 - 2016-08-27 10:54 - 00131504 _____ C:\Users\Usuario\Desktop\Ogar-unlimited-master.zip
2016-08-26 23:37 - 2016-09-01 12:39 - 00003476 _____ C:\Windows\System32\Tasks\Garena+ Plugin Host Service
2016-08-25 14:58 - 2016-08-25 14:58 - 00000000 ____D C:\Users\Todos os Usuários\Jamben
2016-08-25 14:58 - 2016-08-25 14:58 - 00000000 ____D C:\ProgramData\Jamben
2016-08-25 14:54 - 2016-08-25 14:54 - 00000000 ____D C:\Users\Usuario\AppData\Local\Jamben
2016-08-25 14:53 - 2016-09-01 02:24 - 00003462 _____ C:\Windows\System32\Tasks\JambenUpdateTaskMachineUA
2016-08-25 14:53 - 2016-08-25 14:53 - 00003552 _____ C:\Windows\System32\Tasks\JambenUpdateTaskMachineCore
2016-08-25 14:53 - 2016-08-25 14:53 - 00000000 ____D C:\Program Files (x86)\Jamben
2016-08-25 14:52 - 2016-08-25 14:52 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\Winziper
2016-08-23 21:08 - 2016-08-23 21:08 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-08-23 08:05 - 2016-09-01 02:21 - 00000001 _____ C:\Windows\SysWOW64\br.html
2016-08-23 08:05 - 2016-08-23 08:05 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\qksee
2016-08-23 08:05 - 2016-08-23 08:05 - 00000000 ____D C:\Users\Todos os Usuários\swinps
2016-08-23 08:05 - 2016-08-23 08:05 - 00000000 ____D C:\ProgramData\swinps
2016-08-23 08:05 - 2016-08-23 08:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinZip
2016-08-23 08:04 - 2016-08-29 09:46 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\setup1
2016-08-23 08:04 - 2016-08-23 08:05 - 00000000 ____D C:\Program Files (x86)\8vbqejcb
2016-08-22 02:49 - 2016-08-22 02:49 - 00000000 ____D C:\Users\Usuario\Documents\apagar logo 2
2016-08-22 02:46 - 2016-08-22 02:49 - 00000000 ____D C:\Users\Usuario\Documents\apagar logo
2016-08-21 14:58 - 2016-08-21 14:58 - 00007277 _____ C:\Users\Usuario\Documents\granaextra.txt
2016-08-16 21:52 - 2016-08-16 21:52 - 00003482 _____ C:\Windows\System32\Tasks\{30577ADE-6C0A-4EF7-B6AA-B74B3ABD1BCB}
2016-08-16 21:50 - 2016-08-16 21:50 - 00000000 ____D C:\Users\Usuario\Downloads\MT6577 USB VCOM drivers (W7VistaXP)_2
2016-08-16 21:49 - 2016-08-16 21:49 - 00909717 _____ C:\Users\Usuario\Downloads\MT6577 USB VCOM drivers (W7VistaXP)_2.zip
2016-08-16 21:48 - 2016-08-16 21:48 - 00011864 _____ C:\Users\Usuario\Downloads\MT65xx Preloader.zip
2016-08-16 21:39 - 2016-08-16 21:39 - 00000000 ____D C:\Users\Todos os Usuários\SP_FT_Logs
2016-08-16 21:39 - 2016-08-16 21:39 - 00000000 ____D C:\ProgramData\SP_FT_Logs
2016-08-16 21:36 - 2016-08-16 21:37 - 00000000 ____D C:\Users\Usuario\Downloads\BLU_A010L_V10_Isytec.net
2016-08-16 21:34 - 2016-08-16 21:34 - 00000000 ____D C:\Users\Usuario\Downloads\SP_Flash_Tool_v5.1348.00
2016-08-16 21:34 - 2016-08-16 21:34 - 00000000 ____D C:\Program Files (x86)\ClockworkMod
2016-08-16 21:30 - 2016-08-16 21:30 - 00000000 ____D C:\Users\Usuario\Downloads\All MTK USB Driver 2014
2016-08-16 20:10 - 2016-08-16 20:17 - 516293405 _____ C:\Users\Usuario\Downloads\BLU_A010L_V10_Isytec.net.zip
2016-08-16 20:09 - 2016-08-16 20:10 - 24535796 _____ C:\Users\Usuario\Downloads\All MTK USB Driver 2014.rar
2016-08-16 20:09 - 2016-08-16 20:09 - 29834324 _____ C:\Users\Usuario\Downloads\SP_Flash_Tool_v5.1348.00.zip
2016-08-16 18:36 - 2016-08-16 18:37 - 01050784 _____ (Getacihir ) C:\Users\Usuario\Downloads\KingoRoot.exe
2016-08-16 18:25 - 2016-08-16 18:25 - 00000000 ____D C:\Users\Usuario\Documents\Shuame
2016-08-16 18:25 - 2016-08-16 18:25 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\Shuame
2016-08-16 18:14 - 2016-08-21 18:20 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\Tencent
2016-08-16 18:14 - 2016-08-16 18:14 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\KingRoot
2016-08-16 18:13 - 2016-08-16 18:13 - 25826776 _____ (KingRoot ) C:\Users\Usuario\Downloads\KingRootSetup_v3.2.0.1129_105002.exe
2016-08-14 16:20 - 2016-08-14 16:20 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\Highresolution Enterprises
2016-08-14 16:20 - 2016-08-14 16:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Highresolution Enterprises
2016-08-14 16:20 - 2016-08-14 16:20 - 00000000 ____D C:\Program Files\Highresolution Enterprises
2016-08-14 16:19 - 2016-08-14 16:19 - 04286768 _____ C:\Users\Usuario\Downloads\XMouseButtonControlSetup.2.11.1.exe
2016-08-14 13:18 - 2016-08-19 18:23 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2016-08-14 13:03 - 2016-08-14 13:03 - 00001977 _____ C:\Users\Usuario\Downloads\ogario.v2 (1).user.js
2016-08-12 00:58 - 2016-08-29 09:46 - 00001424 _____ C:\Users\Public\Desktop\Starbound.lnk
2016-08-12 00:58 - 2016-08-12 00:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2016-08-12 00:48 - 2016-08-12 00:59 - 00000000 ____D C:\Program Files (x86)\Starbound
2016-08-11 23:49 - 2016-08-12 00:34 - 00000000 ____D C:\Users\Usuario\Downloads\Starbound-GOG
2016-08-10 18:40 - 2016-08-10 18:40 - 00954224 _____ C:\Users\Usuario\Downloads\e9982a1c-61f7-498a-8b11-1a1e300d107a.aac
2016-08-09 23:20 - 2016-08-10 19:37 - 00000417 _____ C:\Users\Usuario\Documents\grind pop freak.txt
2016-08-08 14:21 - 2016-08-08 14:27 - 403610581 _____ C:\Users\Usuario\Downloads\TiaraRO Essential Client vr1.1.1 07072016.7z
2016-08-08 13:47 - 2016-08-08 13:47 - 00002168 _____ C:\Users\Usuario\Documents\comojogarderengar.txt
2016-08-06 00:03 - 2016-08-06 00:03 - 00001973 _____ C:\Users\Usuario\Downloads\ogario.v2.user.js
2016-08-04 20:42 - 2016-08-04 20:42 - 01463424 _____ (Skype Technologies S.A.) C:\Users\Usuario\Downloads\SkypeSetup.exe
2016-08-04 14:12 - 2016-08-19 18:23 - 00001356 _____ C:\Users\Usuario\Desktop\ROBLOX Player.lnk
2016-08-04 14:11 - 2016-08-05 20:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Roblox
2016-08-04 14:11 - 2016-08-04 14:11 - 00000000 ____D C:\Users\Todos os Usuários\Roblox
2016-08-04 14:11 - 2016-08-04 14:11 - 00000000 ____D C:\ProgramData\Roblox
2016-08-04 14:10 - 2016-08-04 14:10 - 00000000 ____D C:\Program Files (x86)\Roblox
2016-08-04 08:09 - 2016-08-04 08:13 - 239055029 _____ C:\Users\Usuario\Downloads\RMania2.0.zip
2016-08-04 07:21 - 2016-08-04 07:47 - 2775850595 ____R C:\Users\Usuario\Downloads\Full_kRO_Renewal_20160124.exe
2016-08-04 07:19 - 2016-08-04 07:19 - 00026821 _____ C:\Users\Usuario\Downloads\Full_kRO_Renewal_20160124.torrent
2016-08-02 11:15 - 2016-08-02 11:16 - 00000000 ____D C:\Users\João\AppData\Local\{023C3460-2694-58D8-4B0C-7D306F6481A8}
2016-07-31 12:41 - 2016-07-31 12:41 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\npm-cache
2016-07-31 12:37 - 2016-07-31 12:41 - 00000000 ____D C:\Users\Usuario\Desktop\Ogar-master
2016-07-31 12:33 - 2016-08-05 23:57 - 00000000 ____D C:\Users\Usuario\Desktop\Ogar-unlimited-master
2016-07-31 01:04 - 2016-07-31 01:04 - 00000050 _____ C:\Users\Usuario\Documents\perfil 8bit.txt
2016-07-30 19:49 - 2016-07-30 19:49 - 00024432 _____ C:\Users\Usuario\Downloads\RGZ Builder.zip
2016-07-30 19:46 - 2016-07-30 19:46 - 00567364 _____ C:\Users\Usuario\Downloads\grftool-win32-1.2.0 (2).zip
2016-07-30 19:46 - 2016-07-30 19:46 - 00300305 _____ C:\Users\Usuario\Downloads\2010-08-11 Lub Files [Translated].rar
2016-07-30 19:18 - 2016-07-30 19:20 - 00000000 __SHD C:\Users\Public\DRM
2016-07-30 19:17 - 2016-07-30 19:17 - 00002177 _____ C:\Users\Usuario\Desktop\Hex Editor Neo.lnk
2016-07-30 19:17 - 2016-07-30 19:17 - 00000000 ____D C:\Users\Usuario\AppData\Local\HHD Software
2016-07-30 19:11 - 2016-07-30 19:12 - 00377856 _____ C:\Users\Usuario\Downloads\ShinsDiffPatcher.exe
2016-07-30 18:20 - 2016-07-30 18:21 - 14283352 _____ (HHD Software Ltd.) C:\Users\Usuario\Downloads\free-hex-editor-neo.exe
2016-07-30 17:39 - 2016-07-30 17:39 - 00000000 ____D C:\Users\Usuario\.dnx
2016-07-30 17:19 - 2016-07-30 17:23 - 43250663 _____ C:\Users\Usuario\Downloads\ro04162016_dll.rar
2016-07-30 17:14 - 2016-07-30 17:42 - 00000000 ____D C:\Users\Usuario\Documents\Visual Studio 2015
2016-07-30 16:56 - 2016-07-30 16:56 - 00000000 ____D C:\Bio RO
2016-07-30 16:47 - 2016-07-30 16:53 - 00000000 ____D C:\Client Side
2016-07-30 16:35 - 2016-07-30 16:35 - 00000000 ____D C:\Users\Todos os Usuários\Microsoft DNX
2016-07-30 16:35 - 2016-07-30 16:35 - 00000000 ____D C:\ProgramData\Microsoft DNX
2016-07-30 16:35 - 2016-07-30 16:35 - 00000000 ____D C:\Program Files\Microsoft DNX
2016-07-30 16:29 - 2016-07-30 16:29 - 00000000 ____D C:\Program Files\IIS Express
2016-07-30 16:29 - 2016-07-30 16:29 - 00000000 ____D C:\Program Files (x86)\IIS Express
2016-07-30 16:28 - 2016-07-30 16:28 - 00000000 ____D C:\Program Files (x86)\Microsoft Office365 Tools
2016-07-30 16:25 - 2016-07-30 16:25 - 00001534 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blend for Visual Studio 2015.lnk
2016-07-30 16:16 - 2016-07-30 16:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2015
2016-07-30 16:10 - 2016-07-30 16:10 - 00001535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2015.lnk
2016-07-30 16:06 - 2016-07-30 16:52 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 14.0
2016-07-30 15:48 - 2016-07-30 15:48 - 00213904 _____ (Microsoft Corporation) C:\Users\Usuario\Downloads\vs_community__2efe7682f5f45a429ac54f621cff4209.exe
2016-07-30 15:03 - 2016-07-30 15:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XAMPP
2016-07-30 14:59 - 2016-07-30 15:08 - 00000000 ____D C:\xampp
2016-07-30 14:55 - 2016-07-30 14:56 - 113232960 _____ (Bitnami) C:\Users\Usuario\Downloads\xampp-win32-5.6.23-0-VC11-installer.exe
2016-07-30 14:53 - 2016-09-01 15:03 - 00000000 ____D C:\Users\Usuario\AppData\Local\TortoiseGit
2016-07-30 14:51 - 2016-07-30 14:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TortoiseGit
2016-07-30 14:51 - 2016-07-30 14:51 - 00000000 ____D C:\Program Files\TortoiseGit
2016-07-30 14:51 - 2016-07-30 14:51 - 00000000 ____D C:\Program Files\Common Files\TortoiseOverlays
2016-07-30 14:49 - 2016-07-30 14:49 - 05073240 _____ (Microsoft Corporation) C:\Users\Usuario\Downloads\vcredist_x86 (2).exe
2016-07-30 14:48 - 2016-07-30 14:49 - 19599360 _____ C:\Users\Usuario\Downloads\TortoiseGit-2.2.0.0-64bit.msi
2016-07-30 14:47 - 2016-07-30 14:47 - 00000041 _____ C:\Users\Usuario\.bash_history
2016-07-30 14:46 - 2016-07-30 17:46 - 00000000 ____D C:\brAthena
2016-07-30 14:45 - 2016-07-30 14:45 - 00000000 ____D C:\Users\Todos os Usuários\Git
2016-07-30 14:45 - 2016-07-30 14:45 - 00000000 ____D C:\ProgramData\Git
2016-07-30 14:43 - 2016-07-30 14:45 - 00000000 ____D C:\Program Files\Git
2016-07-30 14:38 - 2016-07-30 14:39 - 32729472 _____ (The Git Development Community ) C:\Users\Usuario\Downloads\Git-2.9.2-64-bit.exe
2016-07-29 06:46 - 2016-07-29 06:46 - 00000000 ____D C:\Program Files (x86)\WinSaber
2016-07-28 13:25 - 2016-07-28 13:25 - 00000000 ____D C:\Users\Public\Documents\chrome
2016-07-28 12:25 - 2016-07-28 12:25 - 00000007 _____ C:\Windows\SysWOW64\wsx7E45.tmp
2016-07-28 12:22 - 2016-09-01 02:23 - 00000000 _____ C:\Users\Public\Documents\report1.dat
2016-07-28 12:22 - 2016-08-25 14:52 - 00000000 _____ C:\Users\Public\Documents\report.dat
2016-07-27 23:58 - 2016-08-02 00:17 - 00002176 _____ C:\Users\Usuario\Desktop\Discord.lnk
2016-07-27 23:58 - 2016-08-02 00:17 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\discord
2016-07-27 23:58 - 2016-08-02 00:17 - 00000000 ____D C:\Users\Usuario\AppData\Local\Discord
2016-07-27 23:58 - 2016-08-02 00:16 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc
2016-07-27 23:57 - 2016-07-27 23:59 - 00000000 ____D C:\Users\Usuario\AppData\Local\SquirrelTemp
2016-07-27 23:56 - 2016-07-27 23:57 - 48565944 _____ (Hammer & Chisel, Inc.) C:\Users\Usuario\Downloads\DiscordSetup.exe
2016-07-27 13:58 - 2016-07-27 13:58 - 00000010 _____ C:\Users\Usuario\Desktop\ouid.txt
2016-07-27 09:42 - 2016-08-24 12:41 - 00000000 ____D C:\Users\Todos os Usuários\ChelfNotify
2016-07-27 09:42 - 2016-08-24 12:41 - 00000000 ____D C:\ProgramData\ChelfNotify
2016-07-27 09:42 - 2016-08-21 18:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qksee
2016-07-27 09:41 - 2016-07-27 09:42 - 00000000 ____D C:\Program Files (x86)\uw0e7pcf
2016-07-26 17:00 - 2016-07-26 17:00 - 00000219 _____ C:\Users\Usuario\Desktop\Counter-Strike Global Offensive.url
2016-07-26 14:41 - 2016-07-26 14:41 - 00883283 _____ C:\Users\Usuario\Downloads\HistoricoArouca.pdf
2016-07-25 17:52 - 2016-07-25 17:53 - 00883283 _____ C:\Users\Usuario\Downloads\certificado-Zika__Abordagem_clin-31.pdf
2016-07-25 15:06 - 2016-07-25 15:06 - 00000000 ____D C:\Users\Usuario\Desktop\Infinity - Release
2016-07-25 15:05 - 2016-07-25 15:06 - 00065680 _____ C:\Users\Usuario\Downloads\Infinity - Release (1).zip
2016-07-24 21:50 - 2016-07-24 21:50 - 00000040 _____ C:\Users\Usuario\Documents\meua migo.txt
2016-07-24 17:32 - 2016-07-10 23:13 - 01887800 _____ (NVIDIA Corporation) C:\Windows\system32\NvCamera64.dll
2016-07-24 17:32 - 2016-07-10 23:13 - 01595840 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvCamera32.dll
2016-07-24 17:31 - 2016-07-24 17:31 - 00000000 ____D C:\Program Files (x86)\VulkanRT
2016-07-24 17:31 - 2016-05-03 23:23 - 00129824 _____ C:\Windows\SysWOW64\vulkan-1.dll
2016-07-24 17:31 - 2016-05-03 23:22 - 00130848 _____ C:\Windows\system32\vulkan-1.dll
2016-07-24 17:31 - 2016-05-03 23:22 - 00045344 _____ C:\Windows\system32\vulkaninfo.exe
2016-07-24 17:31 - 2016-05-03 23:22 - 00040224 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2016-07-24 17:26 - 2016-07-15 15:15 - 01579976 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2016-07-24 17:26 - 2016-07-15 15:15 - 00214592 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2016-07-24 17:26 - 2016-07-15 15:15 - 00046016 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 39977920 _____ C:\Windows\system32\nvcompiler.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 35115968 _____ C:\Windows\SysWOW64\nvcompiler.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 31640512 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 17321352 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 13581880 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2016-07-24 17:26 - 2016-07-10 23:13 - 10691632 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 10656112 _____ C:\Windows\system32\nvptxJitCompiler.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 10234336 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 09020656 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 08742360 _____ C:\Windows\SysWOW64\nvptxJitCompiler.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 08615336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 03542072 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 03099072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 01939000 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6436881.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 01571776 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6436881.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 01001016 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 00930360 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 00909880 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 00852024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 00694672 _____ C:\Windows\system32\nvfatbinaryLoader.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 00583736 _____ C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 00490744 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 00406064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 00177952 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 00155768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 00153416 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll
2016-07-24 17:26 - 2016-07-10 23:13 - 00131584 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll
2016-07-24 17:23 - 2016-07-24 17:23 - 00000000 ____D C:\NVIDIA
2016-07-24 17:18 - 2016-07-24 17:22 - 357682568 _____ (NVIDIA Corporation) C:\Users\Usuario\Downloads\368.81-desktop-win8-win7-winvista-64bit-international-whql.exe
2016-07-24 02:01 - 2016-07-24 02:02 - 00078785 _____ C:\Users\Usuario\Downloads\Ogar-master.zip
2016-07-22 20:09 - 2016-07-22 20:09 - 00001040 _____ C:\Users\Usuario\Desktop\Curse.lnk
2016-07-22 20:09 - 2016-07-22 20:09 - 00001026 _____ C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Curse.lnk
2016-07-22 20:08 - 2016-07-25 00:11 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\Curse Client
2016-07-22 20:07 - 2016-07-22 20:08 - 77375904 _____ (Curse) C:\Users\Usuario\Downloads\CurseClientSetup.exe
2016-07-22 04:42 - 2016-08-04 22:30 - 04352214 ____H C:\Users\Usuario\AppData\Local\IconCache.db.backup
2016-07-22 01:59 - 2016-07-22 02:00 - 00873037 _____ C:\Users\Usuario\Downloads\leomoon-cpu-v.zip
2016-07-21 19:16 - 2016-08-31 20:01 - 00000000 ____D C:\Users\Usuario\Downloads\MEmu Download
2016-07-21 19:11 - 2016-09-01 01:30 - 00000000 ____D C:\Program Files\Microvirt
2016-07-21 19:07 - 2016-07-21 19:09 - 93707584 _____ C:\Users\Usuario\Downloads\clash-royale-1-4-1.apk
2016-07-21 19:04 - 2016-07-21 19:10 - 291959944 _____ (Microvirt) C:\Users\Usuario\Downloads\Memu-Setup.exe
2016-07-20 12:20 - 2016-07-20 12:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2016-07-20 12:20 - 2016-07-20 12:20 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi
2016-07-19 17:05 - 2016-07-19 17:05 - 00001361 _____ C:\Users\Usuario\Documents\relacionamento abusivo.txt
2016-07-19 11:34 - 2016-07-21 03:45 - 00000000 ____D C:\Users\Usuário Padrão\AppData\Local\LogMeIn Hamachi
2016-07-19 11:34 - 2016-07-21 03:45 - 00000000 ____D C:\Users\Default\AppData\Local\LogMeIn Hamachi
2016-07-19 11:34 - 2016-07-21 03:45 - 00000000 ____D C:\Users\Default User\AppData\Local\LogMeIn Hamachi
2016-07-18 17:42 - 2016-07-18 17:42 - 00000000 ____D C:\Users\Usuario\Documents\The Duel
2016-07-18 17:23 - 2016-07-18 17:42 - 00000068 _____ C:\Windows\GunzLauncher.INI
2016-07-18 17:22 - 2016-07-18 17:48 - 00000000 ____D C:\Program Files (x86)\The Duel
2016-07-18 17:22 - 2016-07-18 17:22 - 00001031 _____ C:\Users\Usuario\Desktop\The Duel.lnk
2016-07-18 17:22 - 2016-07-18 17:22 - 00001031 _____ C:\Users\João\Desktop\The Duel.lnk
2016-07-18 17:22 - 2016-07-18 17:22 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\The Duel
2016-07-18 17:22 - 2016-07-18 17:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Duel
2016-07-18 17:19 - 2016-07-18 17:22 - 314314193 _____ (The Duel) C:\Users\Usuario\Downloads\theduel_20151025.exe
2016-07-16 12:16 - 2016-07-17 18:32 - 00065680 _____ C:\Users\Usuario\Downloads\Infinity - Release (1).rar
2016-07-15 22:07 - 2016-07-15 22:07 - 00001186 _____ C:\Users\Usuario\Desktop\CrossFire BR.lnk
2016-07-15 22:07 - 2016-07-15 22:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Z8Games
2016-07-15 21:58 - 2016-07-15 21:58 - 00000000 ____D C:\Program Files (x86)\Z8Games
2016-07-15 21:29 - 2016-07-15 21:29 - 00000000 ____D C:\Users\Todos os Usuários\Level Up! Games
2016-07-15 21:29 - 2016-07-15 21:29 - 00000000 ____D C:\ProgramData\Level Up! Games
2016-07-15 21:04 - 2016-07-15 21:53 - 00012165 _____ C:\Users\Usuario\Downloads\Combatarms_VER_BR_1605.04.exe.torrent
2016-07-15 21:04 - 2016-07-15 21:53 - 00012165 _____ C:\Users\Usuario\Downloads\ad3884dfd2b88b1e90ff7f726997b337fad9011b.torrent
2016-07-15 21:04 - 2016-07-15 21:29 - 2405290989 _____ (Nexon) C:\Users\Usuario\Downloads\Combatarms_VER_BR_1605.04.exe
2016-07-15 21:02 - 2016-07-15 21:46 - 2087250032 _____ (Z8Games.com ) C:\Users\Usuario\Downloads\CrossFireBR_Setup_Full.exe
2016-07-15 20:54 - 2016-07-15 20:54 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Level Up
2016-07-15 20:46 - 2016-07-15 20:47 - 00400928 _____ () C:\Users\Usuario\Downloads\combatarms.exe
2016-07-15 20:00 - 2016-07-15 20:00 - 00000028 _____ C:\Users\Usuario\Documents\imgur pra caralho.txt
2016-07-13 14:49 - 2016-06-11 03:57 - 00394448 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2016-07-13 14:49 - 2016-06-11 01:48 - 00346320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2016-07-13 14:49 - 2016-06-10 18:38 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2016-07-13 14:49 - 2016-06-10 18:38 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2016-07-13 14:49 - 2016-06-10 18:20 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2016-07-13 14:49 - 2016-06-10 18:19 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2016-07-13 14:49 - 2016-06-10 18:19 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2016-07-13 14:49 - 2016-06-10 18:18 - 00572416 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2016-07-13 14:49 - 2016-06-10 18:18 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2016-07-13 14:49 - 2016-06-10 18:17 - 02895360 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2016-07-13 14:49 - 2016-06-10 18:10 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2016-07-13 14:49 - 2016-06-10 18:08 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2016-07-13 14:49 - 2016-06-10 18:05 - 25814016 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2016-07-13 14:49 - 2016-06-10 18:04 - 00615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2016-07-13 14:49 - 2016-06-10 18:03 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2016-07-13 14:49 - 2016-06-10 18:03 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2016-07-13 14:49 - 2016-06-10 18:02 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2016-07-13 14:49 - 2016-06-10 18:02 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2016-07-13 14:49 - 2016-06-10 17:53 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2016-07-13 14:49 - 2016-06-10 17:50 - 00489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2016-07-13 14:49 - 2016-06-10 17:49 - 06047744 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2016-07-13 14:49 - 2016-06-10 17:40 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2016-07-13 14:49 - 2016-06-10 17:38 - 00107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2016-07-13 14:49 - 2016-06-10 17:35 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2016-07-13 14:49 - 2016-06-10 17:34 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2016-07-13 14:49 - 2016-06-10 17:31 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2016-07-13 14:49 - 2016-06-10 17:28 - 00152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2016-07-13 14:49 - 2016-06-10 17:15 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2016-07-13 14:49 - 2016-06-10 17:13 - 00724992 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2016-07-13 14:49 - 2016-06-10 17:12 - 00806400 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2016-07-13 14:49 - 2016-06-10 17:11 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2016-07-13 14:49 - 2016-06-10 17:10 - 02131456 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2016-07-13 14:49 - 2016-06-10 16:45 - 15409664 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2016-07-13 14:49 - 2016-06-10 16:44 - 02869248 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2016-07-13 14:49 - 2016-06-10 16:30 - 01550848 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2016-07-13 14:49 - 2016-06-10 16:21 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2016-07-13 14:49 - 2016-06-10 16:09 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2016-07-13 14:49 - 2016-06-10 15:54 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2016-07-13 14:49 - 2016-06-10 15:53 - 00497664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2016-07-13 14:49 - 2016-06-10 15:53 - 00341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2016-07-13 14:49 - 2016-06-10 15:53 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2016-07-13 14:49 - 2016-06-10 15:52 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2016-07-13 14:49 - 2016-06-10 15:47 - 02287104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2016-07-13 14:49 - 2016-06-10 15:46 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2016-07-13 14:49 - 2016-06-10 15:45 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2016-07-13 14:49 - 2016-06-10 15:42 - 20348928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2016-07-13 14:49 - 2016-06-10 15:42 - 00476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2016-07-13 14:49 - 2016-06-10 15:41 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2016-07-13 14:49 - 2016-06-10 15:41 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2016-07-13 14:49 - 2016-06-10 15:41 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2016-07-13 14:49 - 2016-06-10 15:32 - 00416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2016-07-13 14:49 - 2016-06-10 15:27 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2016-07-13 14:49 - 2016-06-10 15:26 - 00091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2016-07-13 14:49 - 2016-06-10 15:24 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2016-07-13 14:49 - 2016-06-10 15:23 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2016-07-13 14:49 - 2016-06-10 15:21 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2016-07-13 14:49 - 2016-06-10 15:19 - 00130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2016-07-13 14:49 - 2016-06-10 15:14 - 04608000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2016-07-13 14:49 - 2016-06-10 15:12 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2016-07-13 14:49 - 2016-06-10 15:10 - 00692736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2016-07-13 14:49 - 2016-06-10 15:09 - 02055680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2016-07-13 14:49 - 2016-06-10 15:09 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2016-07-13 14:49 - 2016-06-10 14:58 - 13806080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2016-07-13 14:49 - 2016-06-10 14:45 - 02392576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2016-07-13 14:49 - 2016-06-10 14:42 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2016-07-13 14:49 - 2016-06-10 14:41 - 01315840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2016-07-13 14:46 - 2016-06-25 21:35 - 00041704 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2016-07-13 14:46 - 2016-06-25 21:27 - 01208320 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2016-07-13 14:46 - 2016-06-22 10:06 - 00268800 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2016-07-13 14:46 - 2016-06-17 15:24 - 01490432 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2016-07-13 14:46 - 2016-06-17 15:24 - 00571904 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2016-07-13 14:46 - 2016-06-17 15:24 - 00544256 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2016-07-13 14:46 - 2016-06-17 15:24 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2016-07-13 14:46 - 2016-06-17 15:24 - 00219136 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2016-07-13 14:46 - 2016-06-17 15:24 - 00076800 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2016-07-13 14:46 - 2016-06-14 12:03 - 03217408 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2016-07-13 14:44 - 2016-06-25 21:27 - 00970240 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2016-07-13 14:44 - 2016-06-25 21:27 - 00756736 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2016-07-13 14:44 - 2016-06-25 21:27 - 00344576 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.dll
2016-07-13 14:44 - 2016-06-25 21:27 - 00166400 _____ (Microsoft Corporation) C:\Windows\system32\inetpp.dll
2016-07-13 14:44 - 2016-06-25 21:27 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\inetppui.dll
2016-07-13 14:44 - 2016-06-25 16:54 - 00497152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32spl.dll
2016-07-13 14:44 - 2016-06-25 16:53 - 00297472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.dll
2016-07-13 14:44 - 2016-06-25 16:53 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\ntprint.exe
2016-07-13 14:44 - 2016-06-25 16:53 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\wpnpinst.exe
2016-07-13 14:44 - 2016-06-25 16:41 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntprint.exe
2016-07-13 12:40 - 2016-07-13 12:40 - 11455808 _____ (Microsoft Corporation) C:\Windows\system32\mfc140ud.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 11383096 _____ (Microsoft Corporation) C:\Windows\system32\mfc140d.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 06065976 _____ (Microsoft Corporation) C:\Windows\system32\mfc140u.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 06037296 _____ (Microsoft Corporation) C:\Windows\system32\mfc140.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 01369920 _____ (Microsoft Corporation) C:\Windows\system32\vcamp140d.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 01015632 _____ (Microsoft Corporation) C:\Windows\system32\vccorlib140d.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 01001280 _____ (Microsoft Corporation) C:\Windows\system32\msvcp140d.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00781632 _____ (Microsoft Corporation) C:\Windows\system32\concrt140d.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00633152 _____ (Microsoft Corporation) C:\Windows\system32\msvcp140.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00545088 _____ (Microsoft Corporation) C:\Windows\system32\vcamp140.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00395592 _____ (Microsoft Corporation) C:\Windows\system32\vccorlib140.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00333632 _____ (Microsoft Corporation) C:\Windows\system32\concrt140.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00213312 _____ (Microsoft Corporation) C:\Windows\system32\vcomp140d.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00185152 _____ (Microsoft Corporation) C:\Windows\system32\vcomp140.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00136000 _____ (Microsoft Corporation) C:\Windows\system32\mfcm140d.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00135488 _____ (Microsoft Corporation) C:\Windows\system32\mfcm140ud.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00131920 _____ (Microsoft Corporation) C:\Windows\system32\vcruntime140d.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00106304 _____ (Microsoft Corporation) C:\Windows\system32\mfcm140u.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00105784 _____ (Microsoft Corporation) C:\Windows\system32\mfcm140.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00087888 _____ (Microsoft Corporation) C:\Windows\system32\vcruntime140.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00075584 _____ (Microsoft Corporation) C:\Windows\system32\mfc140fra.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00075584 _____ (Microsoft Corporation) C:\Windows\system32\mfc140deu.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00074560 _____ (Microsoft Corporation) C:\Windows\system32\mfc140esn.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00073536 _____ (Microsoft Corporation) C:\Windows\system32\mfc140ita.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00071488 _____ (Microsoft Corporation) C:\Windows\system32\mfc140rus.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00065856 _____ (Microsoft Corporation) C:\Windows\system32\mfc140enu.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00055104 _____ (Microsoft Corporation) C:\Windows\system32\mfc140jpn.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00054080 _____ (Microsoft Corporation) C:\Windows\system32\mfc140kor.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00046912 _____ (Microsoft Corporation) C:\Windows\system32\mfc140cht.dll
2016-07-13 12:40 - 2016-07-13 12:40 - 00046912 _____ (Microsoft Corporation) C:\Windows\system32\mfc140chs.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 08631104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc140ud.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 08559408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc140d.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 04775224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc140u.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 04705072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc140.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 01032512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vcamp140d.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00774480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vccorlib140d.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00749888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp140d.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00591168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\concrt140d.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00440128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp140.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00400192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vcamp140.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00267592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vccorlib140.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00244032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\concrt140.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00162112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vcomp140d.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00138560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vcomp140.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00122168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcm140d.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00121664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcm140ud.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00111952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vcruntime140d.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00095552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcm140u.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00095032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcm140.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00083792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vcruntime140.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00075584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc140fra.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00075584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc140deu.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00074560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc140esn.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00073536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc140ita.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00071488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc140rus.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00065856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc140enu.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00055104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc140jpn.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00054080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc140kor.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00046912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc140cht.dll
2016-07-13 12:39 - 2016-07-13 12:39 - 00046912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfc140chs.dll
2016-07-12 10:37 - 2016-07-12 10:38 - 00805960 _____ C:\Users\Usuario\Downloads\video-converter-ultimate_setup_full872.exe
2016-07-12 10:28 - 2016-07-12 10:32 - 00001409 _____ C:\Users\Usuario\.youtube-upload-credentials.json
2016-07-12 09:49 - 2016-08-21 18:20 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\eCyber
2016-07-12 09:49 - 2016-08-21 18:20 - 00000000 ____D C:\Program Files (x86)\TXQQBrowser
2016-07-12 09:49 - 2016-07-12 09:49 - 00009434 _____ C:\Windows\System32\Tasks\Browser Updater Task(Core)
2016-07-12 09:48 - 2016-07-12 09:49 - 00000000 ____D C:\Program Files (x86)\cio2pot0
2016-07-11 19:32 - 2016-07-11 19:32 - 00000069 _____ C:\Users\Usuario\Documents\Suporte Curso Zika.txt
2016-07-10 01:09 - 2016-08-21 18:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC Desktop
2016-07-10 01:09 - 2016-08-21 18:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC AdCleaner
2016-07-10 00:55 - 2016-08-23 08:05 - 00000000 ____D C:\Program Files (x86)\Stabily
2016-07-10 00:55 - 2016-07-10 01:05 - 00000000 ____D C:\Users\Usuario\AppData\Local\prevuchnirolyghucult
2016-07-10 00:48 - 2016-07-10 00:49 - 05421200 _____ C:\Users\Usuario\Downloads\Wondershare Filmora 7.3.1.rar
2016-07-09 23:04 - 2016-07-09 23:04 - 00000948 _____ C:\Users\Public\Desktop\Wondershare Filmora.lnk
2016-07-09 23:04 - 2016-07-09 23:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
2016-07-09 23:03 - 2016-07-09 23:03 - 00000000 ____D C:\Users\Todos os Usuários\Wondershare Video Editor
2016-07-09 23:03 - 2016-07-09 23:03 - 00000000 ____D C:\ProgramData\Wondershare Video Editor
2016-07-09 23:03 - 2016-07-09 23:03 - 00000000 ____D C:\Program Files\Wondershare
2016-07-09 22:46 - 2016-07-09 22:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps
2016-07-09 22:46 - 2016-07-09 22:56 - 00000000 ____D C:\Fraps
2016-07-09 22:43 - 2016-07-09 22:43 - 00251262 _____ C:\Users\Usuario\Downloads\Ogar-unlimited-master (2).zip
2016-07-09 22:42 - 2016-07-09 22:42 - 02496800 _____ (Beepa Pty Ltd) C:\Users\Usuario\Downloads\setup (2).exe
2016-07-08 18:11 - 2016-07-08 18:11 - 01059832 _____ (ROBLOX Corporation) C:\Users\Usuario\Downloads\RobloxPlayerLauncher (5).exe
2016-07-07 10:25 - 2016-07-07 10:26 - 41703486 _____ C:\Users\Usuario\Downloads\Cliente Onix 10.94.rar
2016-07-06 15:10 - 2016-07-06 15:10 - 00052806 _____ C:\Users\Usuario\Documents\Curr Felipe simplificado.pdf
2016-07-06 02:31 - 2016-07-06 02:34 - 00000000 ____D C:\Users\Usuario\Documents\backup loko
2016-07-06 01:19 - 2016-07-06 01:20 - 60876068 _____ C:\Users\Usuario\Downloads\com.nianticlabs.pokemongo_0.29.0-2016070500_minAPI19(armeabi-v7a)(nodpi)_apkmirror.com.apk
2016-07-04 01:12 - 2016-07-04 01:12 - 00028272 _____ C:\Windows\system32\Drivers\TrueSight.sys
2016-07-04 01:11 - 2016-07-04 01:11 - 00000000 ____D C:\Users\Todos os Usuários\RogueKiller
2016-07-04 01:11 - 2016-07-04 01:11 - 00000000 ____D C:\ProgramData\RogueKiller
2016-07-04 01:11 - 2016-07-04 01:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
2016-07-04 01:11 - 2016-07-04 01:11 - 00000000 ____D C:\Program Files\RogueKiller
2016-07-04 01:10 - 2016-07-04 01:10 - 29001880 _____ (Adlice Software ) C:\Users\Usuario\Downloads\setup (1).exe
2016-07-04 00:57 - 2016-08-16 01:29 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\vlc
2016-07-04 00:56 - 2016-07-04 00:56 - 00001070 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-07-04 00:56 - 2016-07-04 00:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2016-07-04 00:56 - 2016-07-04 00:56 - 00000000 ____D C:\Program Files (x86)\VideoLAN
2016-07-04 00:55 - 2016-07-04 00:55 - 30533688 _____ C:\Users\Usuario\Downloads\vlc-media-player-2-2-4.exe
2016-07-04 00:50 - 2016-07-04 00:54 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\livestreamer
2016-07-04 00:50 - 2016-07-04 00:50 - 00000000 ____D C:\Program Files (x86)\Livestreamer
2016-07-04 00:49 - 2016-07-04 00:50 - 04215626 _____ C:\Users\Usuario\Downloads\Livestreamer.rar
2016-07-03 20:53 - 2016-07-03 20:53 - 00251343 _____ C:\Users\Usuario\Downloads\Ogar-unlimited-master (1).zip
2016-07-03 19:57 - 2016-07-03 19:58 - 19533199 _____ C:\Users\Usuario\Downloads\Ogar-unlimited-master.rar
2016-07-03 19:14 - 2016-07-03 19:14 - 00251343 _____ C:\Users\Usuario\Downloads\Ogar-unlimited-master.zip
2016-07-03 18:48 - 2016-07-03 18:48 - 00169261 _____ C:\Users\Usuario\Downloads\EXTENSION.rar
2016-07-02 15:48 - 2016-05-12 14:20 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2016-07-02 15:48 - 2016-05-12 14:20 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2016-07-02 15:48 - 2016-05-12 14:15 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2016-07-02 15:48 - 2016-05-12 14:15 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2016-07-02 15:48 - 2016-05-12 14:15 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2016-07-02 15:48 - 2016-05-12 14:15 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2016-07-02 15:48 - 2016-05-12 14:15 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2016-07-02 15:48 - 2016-05-12 14:14 - 01464320 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2016-07-02 15:48 - 2016-05-12 14:14 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2016-07-02 15:48 - 2016-05-12 14:14 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2016-07-02 15:48 - 2016-05-12 14:14 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2016-07-02 15:48 - 2016-05-12 14:14 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2016-07-02 15:48 - 2016-05-12 14:14 - 00344064 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2016-07-02 15:48 - 2016-05-12 14:14 - 00316416 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2016-07-02 15:48 - 2016-05-12 14:14 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2016-07-02 15:48 - 2016-05-12 14:14 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2016-07-02 15:48 - 2016-05-12 14:14 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2016-07-02 15:48 - 2016-05-12 14:14 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2016-07-02 15:48 - 2016-05-12 14:14 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2016-07-02 15:48 - 2016-05-12 14:14 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2016-07-02 15:48 - 2016-05-12 14:14 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2016-07-02 15:48 - 2016-05-12 12:18 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2016-07-02 15:48 - 2016-05-12 12:18 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2016-07-02 15:48 - 2016-05-12 12:18 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2016-07-02 15:48 - 2016-05-12 12:18 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2016-07-02 15:48 - 2016-05-12 12:18 - 00260608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2016-07-02 15:48 - 2016-05-12 12:18 - 00251392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2016-07-02 15:48 - 2016-05-12 12:18 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2016-07-02 15:48 - 2016-05-12 12:18 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2016-07-02 15:48 - 2016-05-12 12:18 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2016-07-02 15:48 - 2016-05-12 12:18 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2016-07-02 15:48 - 2016-05-12 12:18 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2016-07-02 15:48 - 2016-05-12 12:18 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2016-07-02 15:48 - 2016-05-12 12:18 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2016-07-02 15:48 - 2016-05-12 12:18 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2016-07-02 15:48 - 2016-05-12 12:18 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2016-07-02 15:48 - 2016-05-12 12:18 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2016-07-02 15:48 - 2016-05-12 12:05 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2016-07-02 15:48 - 2016-05-12 11:58 - 00464896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2016-07-02 15:48 - 2016-05-12 11:58 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2016-07-02 15:48 - 2016-05-12 11:58 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2016-07-02 15:48 - 2016-05-12 11:58 - 00168960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2016-07-02 15:48 - 2016-05-12 11:58 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2016-07-02 15:48 - 2016-05-12 11:58 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2016-07-02 15:48 - 2016-05-12 11:57 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2016-07-02 15:48 - 2016-05-12 11:56 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2016-07-02 15:48 - 2016-05-12 11:51 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2016-07-02 15:48 - 2016-05-12 10:05 - 00459640 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2016-07-02 15:48 - 2016-05-12 10:05 - 00297984 _____ (Microsoft Corporation) C:\Windows\system32\bcryptprimitives.dll
2016-07-02 15:48 - 2016-05-12 10:04 - 00249352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2016-07-02 15:47 - 2016-05-18 13:10 - 00312832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2016-07-02 15:47 - 2016-05-18 13:09 - 00405504 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2016-07-02 15:47 - 2016-05-13 19:15 - 00382184 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2016-07-02 15:47 - 2016-05-13 19:09 - 00100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2016-07-02 15:47 - 2016-05-13 19:09 - 00046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2016-07-02 15:47 - 2016-05-13 19:09 - 00041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2016-07-02 15:47 - 2016-05-13 19:09 - 00014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2016-07-02 15:47 - 2016-05-13 18:54 - 00308456 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2016-07-02 15:47 - 2016-05-13 18:50 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2016-07-02 15:47 - 2016-05-13 18:49 - 00070656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2016-07-02 15:47 - 2016-05-13 18:49 - 00010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2016-07-02 15:47 - 2016-05-13 18:27 - 00034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2016-07-02 15:47 - 2016-05-12 14:15 - 00105472 _____ (Microsoft Corporation) C:\Windows\system32\winipsec.dll
2016-07-02 15:47 - 2016-05-12 14:14 - 00794624 _____ (Microsoft Corporation) C:\Windows\system32\gpsvc.dll
2016-07-02 15:47 - 2016-05-12 14:14 - 00793088 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll
2016-07-02 15:47 - 2016-05-12 14:14 - 00502272 _____ (Microsoft Corporation) C:\Windows\system32\IPSECSVC.DLL
2016-07-02 15:47 - 2016-05-12 14:14 - 00373760 _____ (Microsoft Corporation) C:\Windows\system32\polstore.dll
2016-07-02 15:47 - 2016-05-12 14:14 - 00096256 _____ (Microsoft Corporation) C:\Windows\system32\gpapi.dll
2016-07-02 15:47 - 2016-05-12 14:14 - 00075776 _____ (Microsoft Corporation) C:\Windows\system32\FwRemoteSvr.dll
2016-07-02 15:47 - 2016-05-12 14:14 - 00032768 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.dll
2016-07-02 15:47 - 2016-05-12 12:18 - 00591872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpprefcl.dll
2016-07-02 15:47 - 2016-05-12 12:18 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\polstore.dll
2016-07-02 15:47 - 2016-05-12 12:18 - 00079360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpapi.dll
2016-07-02 15:47 - 2016-05-12 12:18 - 00070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winipsec.dll
2016-07-02 15:47 - 2016-05-12 12:18 - 00044032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FwRemoteSvr.dll
2016-07-02 15:47 - 2016-05-12 12:06 - 00025600 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.exe
2016-07-02 15:47 - 2016-05-12 11:57 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpscript.dll
2016-07-02 15:47 - 2016-05-12 11:57 - 00024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpscript.exe
2016-07-02 15:47 - 2016-05-11 14:02 - 00483840 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2016-07-02 15:47 - 2016-05-11 14:02 - 00444928 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2016-07-02 15:47 - 2016-05-11 14:02 - 00327168 _____ (Microsoft Corporation) C:\Windows\system32\mswsock.dll
2016-07-02 15:47 - 2016-05-11 14:02 - 00296448 _____ (Microsoft Corporation) C:\Windows\system32\ws2_32.dll
2016-07-02 15:47 - 2016-05-11 12:19 - 00363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2016-07-02 15:47 - 2016-05-11 12:19 - 00351744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2016-07-02 15:47 - 2016-05-11 12:19 - 00231424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mswsock.dll
2016-07-02 15:47 - 2016-05-11 12:19 - 00206336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ws2_32.dll
2016-07-02 15:47 - 2016-05-11 12:11 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\netbtugc.exe
2016-07-02 15:47 - 2016-05-11 12:01 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netbtugc.exe
2016-07-02 15:47 - 2016-05-11 11:58 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2016-07-02 15:47 - 2016-04-14 10:49 - 00603648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2016-07-02 15:47 - 2016-04-14 10:21 - 00647680 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2016-07-02 15:47 - 2016-04-09 04:01 - 00986344 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2016-07-02 15:47 - 2016-04-09 04:01 - 00264936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2016-07-02 15:47 - 2016-04-09 03:57 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
2016-07-02 15:47 - 2016-03-15 21:16 - 00760320 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2016-07-02 15:47 - 2016-03-15 21:16 - 00106496 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll
2016-07-02 15:47 - 2016-03-15 20:53 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll
2016-07-02 15:47 - 2016-03-09 16:00 - 00396800 _____ (Microsoft Corporation) C:\Windows\system32\webio.dll
2016-07-02 15:47 - 2016-03-09 15:40 - 00316416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webio.dll
2016-07-02 15:46 - 2016-04-09 04:02 - 00631176 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2016-07-02 15:46 - 2016-04-09 04:01 - 05546216 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2016-07-02 15:46 - 2016-04-09 04:01 - 00706280 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2016-07-02 15:46 - 2016-04-09 03:59 - 03998952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2016-07-02 15:46 - 2016-04-09 03:59 - 03943144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2016-07-02 15:46 - 2016-04-09 03:59 - 01732864 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2016-07-02 15:46 - 2016-04-09 03:58 - 14186496 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2016-07-02 15:46 - 2016-04-09 03:58 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2016-07-02 15:46 - 2016-04-09 03:58 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2016-07-02 15:46 - 2016-04-09 03:58 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2016-07-02 15:46 - 2016-04-09 03:58 - 00215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2016-07-02 15:46 - 2016-04-09 03:58 - 00063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2016-07-02 15:46 - 2016-04-09 03:58 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2016-07-02 15:46 - 2016-04-09 03:58 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 01867776 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 01314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:57 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 12881408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 01499648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 03:54 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 02:53 - 03231232 _____ (Microsoft Corporation) C:\Windows\explorer.exe
2016-07-02 15:46 - 2016-04-09 02:52 - 00148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2016-07-02 15:46 - 2016-04-09 02:52 - 00062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2016-07-02 15:46 - 2016-04-09 02:52 - 00017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2016-07-02 15:46 - 2016-04-09 02:48 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2016-07-02 15:46 - 2016-04-09 02:47 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2016-07-02 15:46 - 2016-04-09 02:44 - 02973184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe
2016-07-02 15:46 - 2016-04-09 02:43 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2016-07-02 15:46 - 2016-04-09 02:38 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2016-07-02 15:46 - 2016-04-09 02:38 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2016-07-02 15:46 - 2016-04-09 02:38 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2016-07-02 15:46 - 2016-04-09 02:38 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2016-07-02 15:46 - 2016-04-09 02:37 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 02:37 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 02:37 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2016-07-02 15:46 - 2016-04-09 02:37 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2016-07-02 15:46 - 2016-04-06 12:27 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\jnwmon.dll
2016-07-02 15:46 - 2016-03-09 15:54 - 00275456 _____ (Microsoft Corporation) C:\Windows\system32\InkEd.dll
2016-07-02 15:46 - 2016-03-09 15:34 - 00216064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InkEd.dll
2016-07-02 15:37 - 2016-04-14 13:46 - 00114408 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2016-07-02 15:37 - 2016-04-14 13:42 - 03243520 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2016-07-02 15:37 - 2016-04-14 13:42 - 01941504 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2016-07-02 15:37 - 2016-04-14 13:42 - 00504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll
2016-07-02 15:37 - 2016-04-14 13:42 - 00070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2016-07-02 15:37 - 2016-04-14 13:42 - 00025088 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll
2016-07-02 15:37 - 2016-04-14 12:33 - 02365440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2016-07-02 15:37 - 2016-04-14 12:33 - 01806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2016-07-02 15:37 - 2016-04-14 12:33 - 00337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll
2016-07-02 15:37 - 2016-04-14 12:33 - 00025088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll
2016-07-02 15:37 - 2016-04-14 12:19 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2016-07-02 15:37 - 2016-04-14 12:11 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2016-07-02 15:37 - 2016-04-09 01:20 - 01230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2016-07-02 15:37 - 2016-04-09 00:52 - 01424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2016-07-02 14:44 - 2016-07-02 14:44 - 28476264 _____ (cooee GmbH) C:\Users\Usuario\Downloads\ClubCooeeSetup.exe
2016-07-01 13:50 - 2016-07-02 13:19 - 00000000 ____D C:\6b76a93e9121346ae00c24e1
2016-06-26 19:19 - 2016-06-26 19:23 - 00000000 ____D C:\Users\Usuario\Downloads\PopcornTime
2016-06-26 19:18 - 2016-06-26 19:18 - 00000000 ____D C:\Users\Usuario\AppData\Local\PopcornTimeDesktop
2016-06-26 19:16 - 2016-06-26 19:17 - 51498405 _____ (Popcorn Time ) C:\Users\Usuario\Downloads\PopcornTime-latest.exe
2016-06-21 15:25 - 2016-06-21 15:35 - 605662142 _____ C:\Users\Usuario\Downloads\YandereSimJune21st.rar
2016-06-20 14:45 - 2016-06-20 14:45 - 01826504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VsGraphicsHelper.dll
2016-06-20 14:45 - 2016-06-20 14:45 - 00226472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VSPerf140.dll
2016-06-20 13:51 - 2016-06-20 13:51 - 00279720 _____ (Microsoft Corporation) C:\Windows\system32\VSPerf140.dll
2016-06-19 11:42 - 2016-06-19 11:42 - 01129794 _____ C:\Users\Usuario\Downloads\Especial de 50 SUBS!.rar
2016-06-19 04:49 - 2016-06-19 04:49 - 03786285 _____ C:\Users\Usuario\Downloads\BolRunnerGame.rar
2016-06-16 17:49 - 2016-05-23 17:56 - 00000000 ____D C:\Users\Usuario\Desktop\SlitherBots.tkV1.1
2016-06-16 17:47 - 2016-06-16 17:49 - 05603521 _____ C:\Users\Usuario\Downloads\SlitherBots.tk (1).zip
2016-06-16 17:23 - 2016-05-23 17:56 - 00000000 ____D C:\Users\Usuario\Desktop\SlitherBots.tk
2016-06-16 17:22 - 2016-06-16 17:23 - 05557155 _____ C:\Users\Usuario\Downloads\SlitherBots.tk.zip
2016-06-15 14:06 - 2016-06-15 14:06 - 00067135 _____ C:\Users\Usuario\Downloads\Agario Meteor Bots.rar
2016-06-14 19:08 - 2016-06-14 19:08 - 00000222 _____ C:\Users\Usuario\Desktop\Tree of Savior (English Ver.).url
2016-06-13 16:25 - 2016-06-13 16:25 - 00000000 ____D C:\Users\Usuario\Downloads\node_modules
2016-06-08 17:00 - 2016-06-08 17:00 - 01240115 _____ C:\Users\Usuario\Downloads\Guppys Weird Boat Stuff [1.9 ].zip
2016-06-06 22:08 - 2016-06-06 22:08 - 00001464 _____ C:\Users\Usuario\Documents\choro para a riot.txt
2016-06-06 18:10 - 2016-06-06 18:10 - 00157072 _____ C:\Users\Usuario\Downloads\Aliens in One Command Resource Pack.zip
2016-06-06 15:34 - 2016-06-06 15:34 - 00054391 _____ C:\Users\Usuario\Downloads\BacteriaMod-1.7.10-2.3.2.jar
2016-06-06 12:46 - 2016-06-06 12:46 - 02012537 _____ C:\Users\Usuario\Downloads\TRABALHO DE CONCLUSÃO DE CURSO - UTILIZAÇÃO DE CELULOSE BACTERIANA NO TRATAMENTO DE ESCARAS.pdf
2016-06-05 12:56 - 2016-06-05 12:56 - 00148909 _____ C:\Users\Usuario\Downloads\RadixCore-1.7.10-2.1.1-universal.jar
2016-06-05 12:53 - 2016-06-05 12:53 - 00106155 _____ C:\Users\Usuario\Downloads\RadixCore-1.7.10-2.0.3-sources.jar
2016-06-05 12:49 - 2016-06-05 12:49 - 02861830 _____ C:\Users\Usuario\Downloads\MCA-1.7.10-5.1.2-universal.jar
2016-06-03 19:40 - 2016-06-03 19:40 - 00258983 _____ C:\Users\Usuario\Downloads\i019683.pdf

==================== Três Meses Modificados arquivos e pastas ========

(Se uma entrada for incluída na fixlist, o arquivo/pasta será movido.)

2016-09-01 17:45 - 2014-12-26 07:32 - 00000000 ____D C:\FRST
2016-09-01 17:39 - 2015-04-30 01:34 - 00000000 ____D C:\Users\Usuario\AppData\Local\Akamai
2016-09-01 17:34 - 2014-06-06 18:05 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\TS3Client
2016-09-01 17:32 - 2016-03-19 03:31 - 00000000 ____D C:\Program Files (x86)\bPT
2016-09-01 17:32 - 2015-06-17 12:21 - 00001038 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1144292019-2563834070-1988740619-1000UA.job
2016-09-01 17:19 - 2015-03-04 20:12 - 00001086 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1144292019-2563834070-1988740619-1000UA.job
2016-09-01 17:04 - 2014-11-15 20:25 - 00001070 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-09-01 16:50 - 2013-10-29 18:47 - 00000902 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-09-01 13:25 - 2014-06-06 18:05 - 00000000 ____D C:\Users\Usuario\AppData\Local\TeamSpeak 3 Client
2016-09-01 12:58 - 2009-07-14 01:45 - 00010384 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-09-01 12:58 - 2009-07-14 01:45 - 00010384 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-09-01 12:42 - 2013-10-18 20:23 - 00000000 ___RD C:\Users\Usuario\Dropbox
2016-09-01 12:41 - 2013-04-26 04:06 - 00025640 _____ (Windows (R) Server 2003 DDK provider) C:\Windows\gdrv.sys
2016-09-01 12:39 - 2016-03-22 23:50 - 00003092 _____ C:\Windows\System32\Tasks\NbTray
2016-09-01 12:39 - 2014-11-15 20:25 - 00001066 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-09-01 12:39 - 2014-10-17 01:49 - 00000000 ____D C:\temp
2016-09-01 12:39 - 2009-07-14 02:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-09-01 02:42 - 2015-05-11 18:06 - 00000000 ____D C:\Users\Usuario\AppData\Local\LogMeIn Hamachi
2016-09-01 02:39 - 2014-07-07 12:48 - 00000000 ____D C:\Windows\pss
2016-09-01 02:32 - 2015-08-22 12:59 - 00002760 _____ C:\Windows\Sandboxie.ini
2016-09-01 02:32 - 2015-01-09 18:59 - 00000000 ____D C:\Program Files (x86)\Steam
2016-09-01 02:30 - 2014-06-29 22:24 - 00000000 ____D C:\Users\Usuario\AppData\Local\Adobe
2016-09-01 02:26 - 2016-05-01 15:08 - 00000000 ____D C:\Users\Usuario\AppData\Local\Spotify
2016-09-01 02:26 - 2016-05-01 15:07 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\Spotify
2016-09-01 02:23 - 2016-05-02 08:09 - 02622030 _____ C:\Windows\ntbtlog.txt
2016-09-01 01:32 - 2015-06-17 12:21 - 00000986 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-1144292019-2563834070-1988740619-1000Core.job
2016-09-01 01:31 - 2013-04-26 03:21 - 00000000 ____D C:\Users\Usuario
2016-09-01 01:30 - 2016-05-05 00:47 - 00000000 ____D C:\Users\Usuario\.android
2016-09-01 01:10 - 2013-04-27 13:35 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\Skype
2016-08-31 21:13 - 2014-12-31 17:38 - 00000000 ____D C:\Users\Usuario\AppData\Local\CrashDumps
2016-08-31 19:19 - 2015-03-04 20:12 - 00001034 _____ C:\Windows\Tasks\GoogleUpdateTaskUserS-1-5-21-1144292019-2563834070-1988740619-1000Core.job
2016-08-29 13:33 - 2013-04-28 15:41 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\uTorrent
2016-08-29 09:46 - 2015-11-24 17:24 - 00002545 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-08-29 09:46 - 2015-11-24 17:24 - 00002475 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-08-29 09:46 - 2015-11-24 17:22 - 00001449 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-08-29 09:46 - 2014-11-16 20:15 - 00001108 _____ C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LasTMU.lnk
2016-08-29 09:46 - 2014-06-24 19:52 - 00001363 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-08-29 09:46 - 2014-02-15 22:37 - 00001507 _____ C:\Users\Usuario\Desktop\PXG Client.lnk
2016-08-29 09:46 - 2014-02-15 22:37 - 00001493 _____ C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PXG Client.lnk
2016-08-29 09:46 - 2013-04-28 18:03 - 00001192 _____ C:\Users\Usuario\Desktop\Amnesia.lnk
2016-08-29 09:46 - 2013-04-26 03:22 - 00001569 _____ C:\Users\Usuario\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-08-28 14:38 - 2016-01-07 15:18 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\.minecraft
2016-08-26 13:06 - 2009-07-14 02:08 - 00032608 _____ C:\Windows\Tasks\SCHEDLGU.TXT
2016-08-23 21:08 - 2013-10-18 20:21 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\Dropbox
2016-08-21 21:43 - 2016-04-17 12:15 - 00000000 ____D C:\Users\João\AppData\Local\{9681A0DD-B229-CC65-DFB1-E98DFBD91515}
2016-08-21 20:27 - 2014-01-31 23:43 - 00000000 ____D C:\Users\Usuario\Documents\BolStudio
2016-08-21 18:20 - 2015-11-24 17:39 - 00000000 ____D C:\Users\João
2016-08-21 18:20 - 2015-08-23 10:46 - 00000000 ____D C:\Program Files (x86)\Yahoo!
2016-08-21 18:20 - 2015-05-17 07:43 - 00000000 ____D C:\AdwCleaner
2016-08-21 18:20 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\system32\NDF
2016-08-21 18:20 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\inf
2016-08-21 18:19 - 2013-04-28 15:50 - 00000000 ____D C:\Users\Usuario\AppData\Roaming\Mozilla
2016-08-21 18:19 - 2013-04-26 03:21 - 00000000 ____D C:\Users\Usuario\AppData\Local\VirtualStore
2016-08-21 18:19 - 2009-07-14 00:20 - 00000000 ____D C:\Windows\registration
2016-08-21 18:18 - 2013-04-26 03:50 - 00000000 ____D C:\Users\Usuario\AppData\Local\Google
2016-08-19 12:01 - 2015-09-04 21:45 - 00000000 ____D C:\Users\Usuario\AppData\Local\MEGAsync
2016-08-12 00:59 - 2009-07-14 02:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-08-10 22:36 - 2013-05-17 15:44 - 00000000 ____D C:\Users\Usuario\Documents\Zotac
2016-08-05 20:23 - 2009-07-13 23:34 - 00000541 _____ C:\Windows\win.ini
2016-08-04 20:43 - 2014-09-17 09:15 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-08-04 20:43 - 2013-04-27 13:35 - 00000000 ____D C:\Users\Todos os Usuários\Skype
2016-08-04 20:43 - 2013-04-27 13:35 - 00000000 ____D C:\ProgramData\Skype
2016-08-04 20:37 - 2015-12-19 23:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-08-04 14:12 - 2014-08-02 00:10 - 00000188 _____ C:\Users\Usuario\AppData\LocalLow\rbxcsettings.rbx
2016-08-02 12:52 - 2015-11-27 23:17 - 00000000 ____D C:\Users\João\AppData\Roaming\Skype
2016-08-02 12:48 - 2015-12-19 09:41 - 00000000 ____D C:\Users\João\AppData\Local\LogMeIn Hamachi
2016-08-02 11:16 - 2016-04-17 12:15 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HowToRemove.html.lnk
2016-08-02 11:15 - 2016-04-21 16:15 - 00000199 _____ C:\Users\João\AppData\Roaming\WB.CFG

==================== Arquivos na raiz de alguns diretórios =======

2015-11-24 17:24 - 2015-11-24 17:39 - 6420480 _____ () C:\Program Files (x86)\GUTE88B.tmp
2016-04-13 02:04 - 2009-05-20 01:23 - 0024576 _____ () C:\Program Files (x86)\VolumeSerial.exe
2016-04-28 23:45 - 2016-04-29 00:04 - 0045270 _____ () C:\Users\Usuario\AppData\Roaming\room_v3.dat
2013-09-11 20:01 - 2016-07-09 23:01 - 0010752 _____ () C:\Users\Usuario\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-01-08 00:48 - 2015-01-08 00:48 - 0000000 ___SH () C:\Users\Usuario\AppData\Local\LumaEmu
2014-01-30 18:07 - 2014-12-25 01:02 - 0007617 _____ () C:\Users\Usuario\AppData\Local\Resmon.ResmonCfg
2015-09-28 19:38 - 2015-09-28 19:38 - 0000003 _____ () C:\Users\Usuario\AppData\Local\updater.log
2015-09-28 19:38 - 2015-10-02 15:57 - 0000424 _____ () C:\Users\Usuario\AppData\Local\UserProducts.xml
2014-11-15 03:37 - 2014-11-15 03:37 - 0000165 _____ () C:\ProgramData\bc.ini
2015-08-01 12:46 - 2015-08-01 12:46 - 8096636 _____ () C:\ProgramData\ProgramData.rar

Arquivos para serem movidos ou deletados:
====================
C:\Users\Usuario\29CA0000A35C46F1B38DF23BDE433555.dat
C:\Users\Usuario\7A1920D61156ABC05A60135AEFE8BC67.dat


Alguns arquivos em TEMP:
====================
C:\Users\João\AppData\Local\Temp\bdfilters.dll
C:\Users\João\AppData\Local\Temp\libeay32.dll
C:\Users\João\AppData\Local\Temp\msvcr120.dll
C:\Users\João\AppData\Local\Temp\SkypeSetup.exe
C:\Users\João\AppData\Local\Temp\sqlite3.dll
C:\Users\João\AppData\Local\Temp\xmlUpdater.exe
C:\Users\Usuario\AppData\Local\Temp\CPU-V.dll
C:\Users\Usuario\AppData\Local\Temp\dllnt_dump.dll
C:\Users\Usuario\AppData\Local\Temp\jansi-32-git-Bukkit-1.7.9-R0.2-20-g0b2ed13-b3108jnks.dll
C:\Users\Usuario\AppData\Local\Temp\MPCSetup_4.exe
C:\Users\Usuario\AppData\Local\Temp\NGMDll.dll
C:\Users\Usuario\AppData\Local\Temp\NGMResource.dll
C:\Users\Usuario\AppData\Local\Temp\nvSCPAPI.dll
C:\Users\Usuario\AppData\Local\Temp\nvSCPAPISvr.exe
C:\Users\Usuario\AppData\Local\Temp\nvStInst.exe
C:\Users\Usuario\AppData\Local\Temp\s3.exe
C:\Users\Usuario\AppData\Local\Temp\SkypeSetup.exe
C:\Users\Usuario\AppData\Local\Temp\sqlite3.dll
C:\Users\Usuario\AppData\Local\Temp\unicows.dll


==================== Bamital & volsnap =================

(Não há correção automática para arquivos que não passaram na verificação.)

C:\Windows\system32\winlogon.exe => O arquivo é assinado digitalmente
C:\Windows\system32\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\wininit.exe => O arquivo é assinado digitalmente
C:\Windows\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\explorer.exe => O arquivo é assinado digitalmente
C:\Windows\system32\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\svchost.exe => O arquivo é assinado digitalmente
C:\Windows\system32\services.exe => O arquivo é assinado digitalmente
C:\Windows\system32\User32.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\User32.dll => O arquivo é assinado digitalmente
C:\Windows\system32\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\userinit.exe => O arquivo é assinado digitalmente
C:\Windows\system32\rpcss.dll => O arquivo é assinado digitalmente
C:\Windows\system32\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\SysWOW64\dnsapi.dll => O arquivo é assinado digitalmente
C:\Windows\system32\Drivers\volsnap.sys => O arquivo é assinado digitalmente


LastRegBack: 2016-08-26 12:07

==================== Fim de FRST.txt ============================

Publicité


Signaler le contenu de ce document

Publicité